Lead, Cyber Security Engineer

Northern Trust

Chicago (IL)

On-site

USD 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401k and pension
Health and welfare benefits
Discretionary bonus program

Job summary

Northern Trust is seeking a Lead Cyber Security Engineer to design, implement, and support enterprise data protection, DLP, API security, and gateway solutions. You will lead initiatives, guide teams, and partner with infrastructure and security groups to ensure secure, scalable operations.

The role emphasizes hands-on leadership, incident response, automation, and DevOps collaboration to maintain high availability and protection across environments.

Qualifications

  • Bachelor's degree or equivalent experience.
  • 7+ years of Cyber Security, Data Protection, Encryption, API Security, or Layer7 API Gateway experience.
  • CISSP, CISM, CISA, GIAC/SANS, or cloud security certifications preferred.

Responsibilities

  • Lead implementation and optimization of Zscaler DLP, Microsoft Purview DLP, CASB, Endpoint DLP, and data protection controls.
  • Lead Layer7 API Gateway installation, configuration, upgrades, migrations, and administration across DEV, UAT, and PROD environments.
  • Design and support high-availability architectures including clustering, replication, failover, disaster recovery, and business continuity.
  • Design, deploy, and manage API security controls, gateway policies, and integration solutions.
  • Troubleshoot gateway, networking, database, security, and integration issues; perform root cause analysis.
  • Perform health checks, pre-upgrade assessments, post-deployment validation, and operational readiness reviews.
  • Monitor security events, investigate incidents, support threat detection and response activities, and provide production support.
  • Integrate security platforms with SIEM solutions and drive automation and DevOps opportunities.
  • Collaborate with infrastructure, network, database, cloud, and security teams.
  • Develop operational runbooks, technical documentation, upgrade procedures, and troubleshooting guides.
  • Provide technical leadership, mentoring, engineering guidance, and continuous improvement initiatives.

Skills

Zscaler DLP
Layer7 API Gateway
High Availability
Linux/Unix Admin
MySQL Admin
Azure Security
SIEM
Automation
Scripting
CI/CD
DevOps
Kubernetes
Containerized Deployments
Helm/YAML

Education

Bachelor's degree or equivalent experience

Tools

Linux/Unix
MySQL

Job description

About Northern Trust

As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world’s most successful individuals, families, corporations and institutions.

Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide.

With more than 135 years of financial experience and over 24,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service.

Role Summary

Lead Cyber Security Engineer responsible for designing, implementing, upgrading, administering, and supporting enterprise Data Protection, Zscaler DLP, Encryption, API Security, and Broadcom Layer7 API Gateway solutions. Acts as a technical lead, drives cybersecurity initiatives, provides L3 production support, and partners with business and technology teams to deliver secure, scalable, and highly available solutions.

Key Responsibilities
  • Lead implementation and optimization of Zscaler DLP, Microsoft Purview DLP, CASB, Endpoint DLP, and data protection controls.
  • Lead Broadcom Layer7 API Gateway installation, configuration, upgrades, migrations, and administration across DEV, UAT, and PROD environments.
  • Design and support high-availability architectures including clustering, replication, failover, disaster recovery, and business continuity.
  • Design, deploy, and manage API security controls, gateway policies, and integration solutions.
  • Troubleshoot gateway, networking, database, security, and integration issues; perform root cause analysis.
  • Perform health checks, pre-upgrade assessments, post-deployment validation, and operational readiness reviews.
  • Monitor security events, investigate incidents, support threat detection and response activities, and provide production support.
  • Integrate security platforms with SIEM solutions and drive automation and DevOps opportunities.
  • Collaborate with infrastructure, network, database, cloud, and security teams.
  • Develop operational runbooks, technical documentation, upgrade procedures, and troubleshooting guides.
  • Provide technical leadership, mentoring, engineering guidance, and continuous improvement initiatives.
Required Technical Skills
  • Zscaler DLP, Microsoft Purview, Defender Suite, CASB, Endpoint DLP
  • Broadcom Layer7 API Gateway Administration, Upgrades, Migrations, and Policy Management
  • High Availability, Clustering, Replication, Disaster Recovery, and Business Continuity
  • Linux/Unix Administration and MySQL Administration
  • Network Security, SSL/TLS, DNS, Firewall Connectivity, and Networking
  • Threat Detection, Incident Response, Root Cause Analysis, and Production Support
  • Azure Security Services, SIEM Platforms, Automation, Scripting, CI/CD, and DevOps Practices
Preferred Skills
  • Kubernetes and Containerized Deployments
  • Helm Charts and YAML Configuration
  • Logging and Diagnostic Tools
  • Enterprise API Management Platforms
  • Experience working in regulated environments
Qualifications
  • Bachelor's degree or equivalent experience.
  • 7+ years of Cyber Security, Data Protection, Encryption, API Security, or Layer7 API Gateway experience.
  • CISSP, CISM, CISA, GIAC/SANS, or cloud security certifications preferred.
Leadership Scope
  • Lead medium-to-large cybersecurity initiatives and platform upgrades.
  • Serve as an escalation point for critical incidents and production issues.
  • Drive engineering standards, automation, operational excellence, and continuous improvement.
  • Influence security architecture, technology roadmaps, and platform strategy.
  • Partner with cross-functional stakeholders and communicate effectively with leadership.
Salary Range

Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.

Work Authorization

Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H‑1B, L‑1, TN, O‑1, E‑3, H‑1B1, F‑1, J‑1, OPT, CPT or any other employment-based visa).

Working with Us

As a Northern Trust partner, you will be part of a flexible and collaborative work culture, which has a strong history of financial strength and stability. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve.

Philanthropy is deeply rooted in Northern Trust’s history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities.

Reasonable Accommodation

Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com, or alternatively you can discuss your individual requirements with the recruiter you are working with.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead, Cyber Security Engineer
Lead, Cyber Security Engineer

Koitecc Solutions • Chicago (IL), Northern (KY)

Hybrid
USD 140,000 - 190,000
Lead, Cyber Security Engineer
Lead, Cyber Security Engineer

Socket.dev • Chicago (IL)

On-site
USD 140,000 - 190,000
Lead, Cyber Sec Eng
Lead, Cyber Sec Eng

Northern Trust • Chicago (IL)

On-site
USD 120,000 - 180,000
Sr Lead, Cyber Sec Eng
Sr Lead, Cyber Sec Eng

Northern Trust • Chicago (IL)

On-site
USD 150,000 - 190,000
Comprehensive benefits package
Discretionary bonus program
Lead, Cyber Sec Eng
Lead, Cyber Sec Eng

Northern Trust Corp • Chicago (IL), Northern (KY)

Hybrid
USD 130,000 - 190,000
Lead Cyber Sec Eng – Business Analyst
Lead Cyber Sec Eng – Business Analyst

Relha LLC • Chicago (IL)

On-site
USD <1,000
Sr Lead Cyber Security Engineering
Sr Lead Cyber Security Engineering

Northern Trust • Chicago (IL)

On-site
USD 114,000 - 195,000
Lead Cyber Sec Eng - Business Analyst
Lead Cyber Sec Eng - Business Analyst

Koitecc Solutions • Chicago (IL), Northern (KY)

Hybrid
USD 100,000 - 169,000
401k and pension
Health and welfare benefits
Paid time off
+2
Sr Lead Cyber Security Engineering
Sr Lead Cyber Security Engineering

Koitecc Solutions • Chicago (IL), Northern (KY)

Hybrid
USD 115,000 - 195,000
401(k) & pension
Health & welfare benefits
Discretionary bonus program
Sr Lead, Cyber Sec Eng
Sr Lead, Cyber Sec Eng

Northern Trust Corp. • Chicago (IL)

Hybrid
USD 140,000 - 190,000
401(k) and pension benefits
Medical, dental, vision coverage
Paid time off
+1